LastPass Recent Security Incident
https://ift.tt/gjDt2AB
Submitted August 26, 2022 at 02:02AM by zwamkat
via reddit https://ift.tt/7DdcgIU
https://ift.tt/gjDt2AB
Submitted August 26, 2022 at 02:02AM by zwamkat
via reddit https://ift.tt/7DdcgIU
The LastPass Blog
Notice of Recent Security Incident - The LastPass Blog
We have no evidence that this incident involved any access to customer data or encrypted password vaults. Our products and services are operating normally.
Undetectable backdooring PE file
https://ift.tt/ZeyJN46
Submitted August 26, 2022 at 04:51PM by InformationSecurity
via reddit https://ift.tt/tdruRNa
https://ift.tt/ZeyJN46
Submitted August 26, 2022 at 04:51PM by InformationSecurity
via reddit https://ift.tt/tdruRNa
Zimbra Open Bucket Data Leak – Responsible Disclosure
https://ift.tt/MjRsczk
Submitted August 26, 2022 at 05:22PM by bowline90
via reddit https://ift.tt/xQNbkV7
https://ift.tt/MjRsczk
Submitted August 26, 2022 at 05:22PM by bowline90
via reddit https://ift.tt/xQNbkV7
BackBox.org Membership - A Free Open Source Community Project
Zimbra Open Bucket Data Leak – Responsible Disclosure - BackBox.org Membership
Authors: Raffaele Forte, BackBox Team
Tool Release – JWT-Reauth - a plugin aims to provide a painless solution to this issue. JWT-Reauth provides Burp with a way to authenticate with a given endpoint, parse out the provided token and then attach it as a header on requests going to a given scope.
https://ift.tt/k5OBcpH
Submitted August 26, 2022 at 06:10PM by digicat
via reddit https://ift.tt/AbxJNiH
https://ift.tt/k5OBcpH
Submitted August 26, 2022 at 06:10PM by digicat
via reddit https://ift.tt/AbxJNiH
NCC Group Research
Tool Release – JWT-Reauth
When testing APIs with short-lived authentication tokens, it can be frustrating to login every few minutes, taking up a consultant's time with an unnecessary cut+paste task — As well as introducing the possibility for human error in copying across the token…
Security in Advanced Analytics and Machine Learning Environments
https://ift.tt/t7Mgjk4
Submitted August 26, 2022 at 12:37PM by Preatoria
via reddit https://ift.tt/cKP2Y76
https://ift.tt/t7Mgjk4
Submitted August 26, 2022 at 12:37PM by Preatoria
via reddit https://ift.tt/cKP2Y76
Medium
Security in Advanced Analytics and Machine Learning Environments
1. Introduction to Advanced Analytic Environment
Matano - An open source serverless security lake platform for AWS using Rust + Apache Iceberg
https://ift.tt/tsU41yb
Submitted August 27, 2022 at 03:50AM by sanitybit
via reddit https://ift.tt/65FahHu
https://ift.tt/tsU41yb
Submitted August 27, 2022 at 03:50AM by sanitybit
via reddit https://ift.tt/65FahHu
GitHub
GitHub - matanolabs/matano: Open source cloud-native security lake platform (SIEM alternative) for threat hunting, detection &…
Open source cloud-native security lake platform (SIEM alternative) for threat hunting, detection & response, and cybersecurity analytics at petabyte scale on AWS - GitHub - matanolabs/matan...
Microsoft: New UEFI CA memory mitigation requirements for signing
https://ift.tt/NCK7EDa
Submitted August 27, 2022 at 06:13AM by sanitybit
via reddit https://ift.tt/dyV4Gwj
https://ift.tt/NCK7EDa
Submitted August 27, 2022 at 06:13AM by sanitybit
via reddit https://ift.tt/dyV4Gwj
TECHCOMMUNITY.MICROSOFT.COM
New UEFI CA memory mitigation requirements for signing
Microsoft, in conjuncture with partners in the PC ecosystem, has developed a set of capabilities and new operating environment conditions for UEFI based systems. This environment will leverage common, architecturally defined mitigations to improve the device…
The Elastic Container Project for Security Research
https://ift.tt/0GxmbLs
Submitted August 27, 2022 at 06:13AM by sanitybit
via reddit https://ift.tt/uh6XOJ3
https://ift.tt/0GxmbLs
Submitted August 27, 2022 at 06:13AM by sanitybit
via reddit https://ift.tt/uh6XOJ3
Elastic Blog
The Elastic Container Project for Security Research
The Elastic Container Project provides a single shell noscript that will allow you to stand up and manage an entire Elastic Stack using Docker. This open source project enables rapid deployment for testing use cases.
Awesome Security Newsletters
https://ift.tt/Y1xkmNf
Submitted August 27, 2022 at 05:57PM by zuuZuux3
via reddit https://ift.tt/5zEauNK
https://ift.tt/Y1xkmNf
Submitted August 27, 2022 at 05:57PM by zuuZuux3
via reddit https://ift.tt/5zEauNK
GitHub
GitHub - TalEliyahu/awesome-security-newsletters: Periodic cyber security newsletters that capture the latest news, summaries of…
Periodic cyber security newsletters that capture the latest news, summaries of conference talks, research, best practices, tools, events, vulnerabilities, and analysis of trending threats and attac...
Command Injection in the GitHub Pages Build Pipeline
https://ift.tt/1QOnWcD
Submitted August 27, 2022 at 09:18PM by whisperingmime
via reddit https://ift.tt/vtZFUVE
https://ift.tt/1QOnWcD
Submitted August 27, 2022 at 09:18PM by whisperingmime
via reddit https://ift.tt/vtZFUVE
Blog by Joren Vrancken
Command Injection in the GitHub Pages Build Pipeline
Recently, I participated in the GitHub Bug Bounty program (run through HackerOne). This is a writeup of a command injection bug I discovered in GitHub Pages build process.
SATisfying our way into remote code execution in the OPC UA industrial stack
https://ift.tt/izt4D5Y
Submitted August 28, 2022 at 12:06PM by SRMish3
via reddit https://ift.tt/s8PutUJ
https://ift.tt/izt4D5Y
Submitted August 28, 2022 at 12:06PM by SRMish3
via reddit https://ift.tt/s8PutUJ
JFrog
OPC UA Vulnerabilities Discovered Following Pwn2Own 2022 Hacking Competition
Remote code execution vulnerability found by JFrog Security Research, exploiting an Info Leak and Heap Overflow on UA’s C++ OPC demo server.
On Cryptocurrency Wallet Design – defines access control taxonomy, can be reused e.g. for MFA factors
https://ift.tt/ckmaULi
Submitted August 28, 2022 at 12:58PM by D4r1
via reddit https://ift.tt/hCVnlSg
https://ift.tt/ckmaULi
Submitted August 28, 2022 at 12:58PM by D4r1
via reddit https://ift.tt/hCVnlSg
Vision2 this noscript analyses the Nmap XML scanning results parses each CPE context and correlates to search CVE on NIST. You can use that to find public vulnerabilities in services.
https://ift.tt/vT3eInP
Submitted August 29, 2022 at 08:23AM by CoolerVoid
via reddit https://ift.tt/OmiISeX
https://ift.tt/vT3eInP
Submitted August 29, 2022 at 08:23AM by CoolerVoid
via reddit https://ift.tt/OmiISeX
GitHub
GitHub - CoolerVoid/Vision2: Nmap's XML result parse and NVD's CPE correlation to search CVE.
Nmap's XML result parse and NVD's CPE correlation to search CVE. - GitHub - CoolerVoid/Vision2: Nmap's XML result parse and NVD's CPE correlation to search CVE.
A technical analysis of Pegasus for Android – Part 1
https://ift.tt/ULJRH1n
Submitted August 29, 2022 at 06:33PM by CyberMasterV
via reddit https://ift.tt/TmDHwWE
https://ift.tt/ULJRH1n
Submitted August 29, 2022 at 06:33PM by CyberMasterV
via reddit https://ift.tt/TmDHwWE
Blind exploits to rule WatchGuard firewalls: pre-auth RCE as root on WG appliances
https://ift.tt/sg61dLU
Submitted August 29, 2022 at 07:52PM by cfambionics
via reddit https://ift.tt/gV9uciq
https://ift.tt/sg61dLU
Submitted August 29, 2022 at 07:52PM by cfambionics
via reddit https://ift.tt/gV9uciq
Ambionics
Blind exploits to rule WatchGuard firewalls
Early this year we had the opportunity to pentest Watchguard firewalls (XTM, Firebox) for a red team engagement. This blogpost will follow the journey in which I discover 5 vulnerabilities - 2 patched along the way - and build 8 distinct exploits, and finally…
Part 1 – SingPass RASP Analysis
https://ift.tt/koZGfLs
Submitted August 29, 2022 at 09:50PM by jeandrew
via reddit https://ift.tt/BnMCjYT
https://ift.tt/koZGfLs
Submitted August 29, 2022 at 09:50PM by jeandrew
via reddit https://ift.tt/BnMCjYT
Romain Thomas
Part 1 – SingPass RASP Analysis | Romain Thomas
This first blog post introduces the RASP checks used in SingPass
jscythe: Abuse the node.js inspector mechanism to force any node.js/electron/v8 based process to execute arbitrary javanoscript code.
https://ift.tt/Tk4Js0Z
Submitted August 30, 2022 at 01:07AM by sanitybit
via reddit https://ift.tt/5KFExb7
https://ift.tt/Tk4Js0Z
Submitted August 30, 2022 at 01:07AM by sanitybit
via reddit https://ift.tt/5KFExb7
GitHub
GitHub - evilsocket/jscythe: Abuse the node.js inspector mechanism in order to force any node.js/electron/v8 based process to execute…
Abuse the node.js inspector mechanism in order to force any node.js/electron/v8 based process to execute arbitrary javanoscript code. - GitHub - evilsocket/jscythe: Abuse the node.js inspector mechan...
Ethernaut CTF walkthrough with Brownie framework
https://ift.tt/wEfzxkc
Submitted August 30, 2022 at 04:32AM by Glittering_Audience8
via reddit https://ift.tt/yQvYaJ1
https://ift.tt/wEfzxkc
Submitted August 30, 2022 at 04:32AM by Glittering_Audience8
via reddit https://ift.tt/yQvYaJ1
securitypills.news
Ethernaut Challenges
Please read This is a work in progress article that will receive updates as we continue publishing detailed walkthroughs for each level.
Ethernaut is OpenZeppelin Web3/Solidity based wargame to learn about Ethereum smart contract security and become familiar…
Ethernaut is OpenZeppelin Web3/Solidity based wargame to learn about Ethereum smart contract security and become familiar…
Truth Behind the Celer Network cBridge cross-chain bridge incident: BGP hijacking
https://ift.tt/DwcvRUt
Submitted August 30, 2022 at 11:18AM by sanitybit
via reddit https://ift.tt/BxYv5ys
https://ift.tt/DwcvRUt
Submitted August 30, 2022 at 11:18AM by sanitybit
via reddit https://ift.tt/BxYv5ys
Medium
Truth Behind the Celer Network cBridge cross-chain bridge incident: BGP hijacking
BGP hijacking
Tetsuji: Remote Code Execution on a GameBoy Colour 22 Years Later
https://ift.tt/6SiXT4z
Submitted August 30, 2022 at 11:16AM by sanitybit
via reddit https://ift.tt/ECXLMiI
https://ift.tt/6SiXT4z
Submitted August 30, 2022 at 11:16AM by sanitybit
via reddit https://ift.tt/ECXLMiI
Tetsuji: Remote Code Execution on a GameBoy Colour 22 Years Later
Tetsuji: Remote Code Execution on a GameBoy Colour 22 Years Later :: TheXcellerator
Introduction It’s that time of year again - the Binary Golf Grand Prix is back for a third year running! You can also check out my entries to the first and second times this amazing competition ran.
The theme this year was to produce a binary that crashes…
The theme this year was to produce a binary that crashes…
Incident Response in AWS
https://ift.tt/hgBvZRT
Submitted August 30, 2022 at 11:11AM by sanitybit
via reddit https://ift.tt/cf2rnyZ
https://ift.tt/hgBvZRT
Submitted August 30, 2022 at 11:11AM by sanitybit
via reddit https://ift.tt/cf2rnyZ
https://www.chrisfarris.com/
Incident Response in AWS - Chris Farris
At BSides Atlanta I gave a talk on how to handle an incident in AWS. The talk and this post is intended to help those already familiar with the principles of Incident Response to understand what to do when the incident involves the AWS Control Plane.